Technical information
- Android.RemoteCode.32
- UDP(DNS) <Google DNS>
- TCP(GCM) <Google Host>
- TCP(HTTP/1.1) int.d####.s####.####.cn:80
- TCP(HTTP/1.1) api.gongda####.cn:80
- api.gongda####.cn
- int.d####.s####.####.cn
- liul####.121.com
- pay.tp####.com
- www.tb####.com
- www.vu####.com
- int.d####.s####.####.cn/iplookup/iplookup.php?format=####
- api.gongda####.cn/another_pay/android.php
- <Package Folder>/EOZTzhVG.dex (deleted)
- <Package Folder>/EOZTzhVG.jar
- <Package Folder>/files/####/libtm_pay.so
- <Package Folder>/files/####/libus.so
- <Package Folder>/shared_prefs/MYYR.xml
- <SD-Card>/Android/####/.nomedia
- <SD-Card>/Android/####/journal.tmp
- tm_pay
- us
- weydu
- AES-ECB-PKCS5Padding
- RSA